Research Article
Research on Multimodality Face Antispoofing Model Based on Adversarial Attacks
Figure 9
Choosing different numbers of image patches for white-box and black-box attacks. The abscissa represents the number of attacked image patches, and the ordinate represents the detection accuracy of the model in the face of the attacks. The first line shows the results on RGB images and Depth images, respectively; the second row shows the results on IR images and multimodality images, respectively. (a) RGB. (b) Depth. (c) IR. (d) Fusion.
(a) |
(b) |
(c) |
(d) |